HP3000-L Archives

December 2004, Week 3

HP3000-L@RAVEN.UTC.EDU

Options: Use Monospaced Font
Show Text Part by Default
Show All Mail Headers

Message: [<< First] [< Prev] [Next >] [Last >>]
Topic: [<< First] [< Prev] [Next >] [Last >>]
Author: [<< First] [< Prev] [Next >] [Last >>]

Print Reply
Subject:
From:
Art Bahrs <[log in to unmask]>
Reply To:
Date:
Thu, 16 Dec 2004 08:07:16 -0800
Content-Type:
text/plain
Parts/Attachments:
text/plain (102 lines)
Hi Nigel :)
    <<<<< Paranoid Security Mindset Alert >>>> (Did you hear the klaxons?
You should have! hehe)

    Ok... first of all... even with all the best security in the world (and
MPE/iX has good security) set up for this job file.... leaving passwords in
files and/or job streams just ain't right!  (it's sorta like a 5 cylinder
engine (see Chevy for inline 5 reference))

    This file if seen could comprise the security of your Unix boxes...
also, this could cause an audit finding if noticed by an auditor. Note,
more than one auditor has listened to my advice when I have intoned "Pay no
heed to the man behind the curtain" with respect to tricks on my 3k's....
but I only used this when I am sure that the security is tight enough to
pass the audit should the auditor have the knowledge base to understand
MPE/iX!!!

    Also, um... the phrase 'SSH not Telnet' comes to mind.... OpenSSH
should be running on all of your Unix servers.... and I thot there was a
rev that ran on the 3k.... (somebody help me out on this one please?)

    <<<< Paranoid Security Mindset Alert Ended >>>>

(you are now returned to your normal world.... but you might want to check
the locks and things :) hehehe there are people like me loose in the ether
:) hehe)

Art "Just a side thot or two for securing your data" Bahrs

=======================================================
Art Bahrs, CISSP           Information Security          The Regence Group
(503) 553-1425              FAX (503) 553-1453


|---------+-------------------------------->
|         |           "Nigel Skeet"        |
|         |           <[log in to unmask]> |
|         |           Sent by: "HP-3000    |
|         |           Systems Discussion"  |
|         |           <[log in to unmask]
|         |           DU>                  |
|         |                                |
|         |                                |
|         |           12/16/2004 05:51 AM  |
|         |           Please respond to    |
|         |           "Nigel Skeet"        |
|         |                                |
|         |           |-------------------||
|         |           | [ ] Secure E-mail ||
|         |           |-------------------||
|---------+-------------------------------->
  >--------------------------------------------------------------------------------------------------------------------------|
  |                                                                                                                          |
  |      To:    [log in to unmask]                                                                                       |
  |     cc:                                                                                                                  |
  |     Subject:      [HP3000-L] Running a script within Telnet                                                              |
  >--------------------------------------------------------------------------------------------------------------------------|




Hi fellow listers.

Is it possible to run an input script into telnet so that it runs commands
on a remote system for me ?

What I have is several Unix servers that I wan't to change the access to
on a single file. I can reach the servers from my 3K machine and intended
something like

login > telnetin
pwd   >>telnetin
chmod xxx /tmp/filename >>telnetin
exit >>telnetin

Then from MPE

telnet.arpa.sys systemname < telnetin

Problem is the script stops when telnet hits the remote machine if I
ctrl "]" then it'll process the commands from my indirect file.

Any ideas if this is possible ?

TIA

Nige...

* To join/leave the list, search archives, change list settings, *
* etc., please visit http://raven.utc.edu/archives/hp3000-l.html *





 =============================================================================
IMPORTANT NOTICE: This communication, including any attachment, contains information that may be confidential or privileged, and is intended solely for the entity or individual to whom it is addressed.  If you are not the intended recipient, you should delete this message and are hereby notified that any disclosure, copying, or distribution of this message is strictly prohibited.  Nothing in this email, including any attachment, is intended to be a legally binding signature.
 =============================================================================

* To join/leave the list, search archives, change list settings, *
* etc., please visit http://raven.utc.edu/archives/hp3000-l.html *

ATOM RSS1 RSS2